I have recently set up a RADIUS server with EAP for my wireless router, however, I have some questions about the key size and how WPA2 enterprise (AES) works in general.
I have read that in Enterprise mode, the key used to encrypt the traffic between the wireless AP and the devices connected to it is randomly generated and expires each time a user connects/reconnects. I also know that in WPA2-PSK, the maximum key length is 256-bits.
However, I have not been able to find any place that tells me where the key generation for WPA2 enterprise takes place, and which device has the burden of generation and negotiating that random key. Is the key generated by the AP? is it generated by the RADIUS server? what is the length of the encryption key?
Also, is there a way to actually check to see if the traffic is encrypted?
Thanks!